CVE-2026-31431 Copy Fail in Rootless Containers
A detailed lab test shows how CVE-2026-31431, known as Copy Fail, escalates privileges inside rootless Podman containers but fails to escape to the host due to user namespace mappings. The analysis covers shellcode disassembly, exploit tracing, and kernel behavior via eBPF. Rootless setups on GNOME GitLab runners contain the issue effectively.
